IglooFTP Banner Parsing Buffer Overflow Vulnerability
BID:8161
Info
IglooFTP Banner Parsing Buffer Overflow Vulnerability
| Bugtraq ID: | 8161 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jul 10 2003 12:00AM |
| Updated: | Jul 10 2003 12:00AM |
| Credit: | Discovery credited to "inv[at]dtors". |
| Vulnerable: |
IglooFTP IglooFTP 0.6.1 |
| Not Vulnerable: | |
Discussion
IglooFTP Banner Parsing Buffer Overflow Vulnerability
A buffer overflow vulnerability has been reported in IglooFTP. The vulnerability occurs when IglooFTP is parsing 'Welcome' banner messages from remote FTP servers. When IglooFTP receives an FTP banner exceeding a certain length, it will trigger the overflow condition. This could allow for execution of malicious code in the context of the FTP client.
A buffer overflow vulnerability has been reported in IglooFTP. The vulnerability occurs when IglooFTP is parsing 'Welcome' banner messages from remote FTP servers. When IglooFTP receives an FTP banner exceeding a certain length, it will trigger the overflow condition. This could allow for execution of malicious code in the context of the FTP client.